CNNVD-202507-3264 Information

CNNVD ID

CNNVD-202507-3264

CVE-2025-38434

  • CNNVD Published: 2025-07-25

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于riscv架构中TASK_SIZE_MAX定义不当,可能导致无效地址访问。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the inappropriate definition of TASK SIZE MAX in the riscv architecture, which may lead to invalid address access.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-07-25

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/890ba5be6335dbbbc99af14ea007befb5f83f174 https://git.kernel.org/stable/c/f8b1898748dfeb4f9b67b6a6d661f354b9de3523 https://git.kernel.org/stable/c/fe30c30bf3bb68d4a4d8c7c814769857b5c973e6 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-28-07-2025-47798

Patch

https://www.kernel.org/

Share on: